Showing posts with label linux. Show all posts
Showing posts with label linux. Show all posts

Linux Java-Based Trojan Might Have Been an Accident

Linux Java-Based Trojan Might Have Been an Accident

A more detailed analysis of the recently discovered cross-platform social networking trojan, suggests that the Linux infection vector might have been an unintended side effect.

The hypothesis was put forth ParetoLogic's Jerome Segura, one of the first security researchers to point out the trojan's capability of infecting Linux systems.

After analyzing the encrypted malicious code, the researcher believes that its authors only intended to target Windows and Mac OS X.

There are routines that explicitly check for Mac OS X, but none for Linux. The “might have been an accident” idea is further supported by the temporary nature of the infection on the latter.

“If they really wanted to infect Linux computers, the bad guys would have added a start-up entry to ensure the code would run each and every time the machine was started. This, by the way, is not a big deal to achieve,” the researcher notes.

Symantec also published some findings that point in this direction. According to the antivirus giant, the trojan contains multiple components, one of which is used to decrypt the malicious Java classes.

However, the attack server only contained versions of this component for Windows (cplib_x86_win.klf) and Mac (cplib_x86_osx.tnw).

This doesn't change the fact that Linux users are affected, but does help explain why the infection is less effective on this OS, than on the other two.

There is also a bit of confusion about the trojan's name. While it is similar to the notorious Koobface social networking worm, ultimately, this seems to be a separate creation.

SecureMac, the company that originally reported the threat, calls it Trojan.osx.boonana.a, however, Mac antivirus vendor Intego names it OSX/Koobface.A.

Symantec also published a rundown of the infection. The company detects the malware as Trojan.Jnanabot.

“An unsuspecting user clicks on a malicious URL on a social networking site, resulting in the downloading of a dropper file.

“This file then drops and launches the main component of the threat, that is jnana.tsa, which is a .jar file. This file contains many encrypted class files.

“Cplib_x86_win [or cplib_x86_osx] module is used to encrypt and decrypt those class files. This component has the ability to control all the other components of the threat,” the antivirus vendor explains.

Some people have questioned, and not without merit, the drive-by download nature of this attack. However, it's worth pointing out that, according to some theories, Java applets and ActiveX objects qualify as drive-by downloads, even though they require user interaction.

Follow the editor on Twitter @lconstantin




Source: http://news.softpedia.com/news/Linux-Java-Based-Trojan-Might-Have-Been-an-Accident-163848.shtml

Ubuntu - The New Wallpapers of Ubuntu 10.04 LTS


While Canonical failed once again to deliver that “professional-looking theme” everyone was expecting (promised since the time when Ubuntu 9.10 was still under development), it introduced some nice themes created by various users of the community for the upcoming release of Ubuntu 10.04 LTS (Lucid Lynx): Ambiance and Radiance. Today, we announce the new wallpapers added by Canonical in Lucid Lynx.

Being an LTS (Long Term Support) release, Ubuntu 10.04 (Lucid Lynx) will be definitely a stable, secure, reliable and good-looking operating system! Without further introduction, we’ll let you enjoy the new wallpapers. Congrats to the authors of these beautiful photographs!

On April 29th, Ubuntu 10.04 LTS (Lucid Lynx) will become the 12th release of the Ubuntu operating system.

Among some of the interesting features that will be present in Ubuntu 10.04 LTS (Lucid Lynx), we can mention the newly released GNOME 2.30 desktop environment, which brings lots and lots of improvements in many areas, such as Nautilus, Empathy, Evolution, Tomboy, Totem, Rhythmbox, and many more. Lucid’s kernel packages will be based on Linux kernel 2.6.32, and applications such as Oracle’s OpenOffice.org 3.2, Mozilla Firefox 3.6, Transmission 1.92 or Pidgin 2.6.6, Mozilla Thunderbird 3 and The GIMP 2.6.8 (all three available from the repositories) will also be present in the final version of Ubuntu 10.04 LTS (Lucid Lynx).

Don’t forget to visit our website next Thursday (April 22nd) for a detailed report on the Ubuntu 10.04 LTS (Lucid Lynx) RC release, where we will unveil more of Lucid’s new features!





















How to Fix VirtualBox USB Support

How to Fix VirtualBox USB Support


It
is actually a known fact that there is an issue with VirtualBox and the
attached USB devices that many of us are trying to use in the virtual
machine. Here is a real-life example:


I am a 100% Linux user and I have a photo printer that Linux can’t recognize. Let’s say that I want to print some photos quickly, to give them to someone. I have a Windows installation in a virtual machine just for this reason (sad, I know) and I want to access my printer,
which is connected via a USB port. To my surprise, I can see the
printer in the USB device list of VirtualBox, but I can’t access it
(very frustrating). Firing up Firefox and searching on Google for a fix takes too long, because there are many old tutorials that teach you how to modify various files
or change permissions, etc. What to do? Well, below is the answer to
the endless VirtualBox – USB issue (and it’s pretty damn simple too!).


This tutorial was created mostly for my needs, but I am sure that many of you will find it very helpful. Ready?


This is how a default installation of VirtualBox in Ubuntu 9.04 shows the USB devices, and we need to fix it.


Step 1: Go to System -> Administration -> Users and Groups…

Step 2: Click the “Unlock” button…


Step 3: Type your password and click the “Authenticate” button….


Step 4: Click on the “Manage Groups” button…


Step 5: In the “Groups settings” window that will
appear, scroll down until you see the vboxusers entry. Select it and
then click on the “Properties” button…


Step 6: Another window will appear, called “Group
‘vboxusers’ Properties. Just check the box in front of your username and
click the “OK” button when you’re done…


Step 7: Close the “Group settings” and “Users
Settings” windows and log out. Log in and open up VirtualBox, start your
virtual machine and you will see that you can now access the USB
devices!


pctipsbox.com

GIMP Is One Agile Photo Tool


GIMP Is One Agile Photo Tool

GIMP Is One Agile Photo Tool
GIMP is one of the most able-bodied open source photo manipulation apps in the world, and its feature set rivals those of many proprietary -- and often downright expensive -- offerings. Its features will fix flaws in photos as well as enable the user to artistically manipulate images in a multitude of formats. However, most photo editors this advanced do require a bit of a learning curve, and GIMP is no exception.

This story was originally published on April 14, 2010, and is brought to you today as part of our Best of ECT News series.